For efficient authorization settings in a computing environment, user access permissions are created or modified by mapping, granting, and/or limiting access to resources by resource type, and using checkboxes for controlling user access for individual resources and for mapping one of a multiplicity of icons to control a type of user access and control over the individual resources.
Legal claims defining the scope of protection, as filed with the USPTO.
1. A method for efficient authorization settings using at least one processor in a computing environment, the method comprising: creating or modifying user access permissions, by a system administrator executing the at least one processor, by a mapping, granting, and limiting access to a plurality of resources by a type of the plurality of resources using a permission profile created for each user by the system administrator, the permission profile displayed within a single interface; using checkboxes for controlling user access for individual resources of the plurality of resources and for mapping a plurality of icons to display a type of user access and control a particular user has over the individual resources within the permission profile created for each user; wherein the user access permissions are defined to include at least a type of command a user is allowed to execute, a list of the plurality of resources the user is allowed to execute the commands on, and a list of the plurality of resources the user is allowed to view such that the user access permissions are created or modified by the system administrator to grant and limit access to each of the respective plurality of resources the user is authorized to access and control in one step within the permission profile of the single interface, in lieu of granting and limiting access to each of the respective plurality of resources to the user on an individual basis within multiple respective interfaces associated with respective ones of the plurality of resources; using the plurality of icons for indicating a status specified for the type of the plurality of resources; using the plurality of icons for indicating a status specified for each of a plurality of actions, wherein the plurality of actions include at least renaming, copying, and customizing settings of the plurality of actions; moving the plurality of icons to one of a plurality of positions for setting the access to the type of the plurality of resources; and selecting the checkboxes next to each of the plurality of resources for one of viewing and modifying each of the plurality of resources; wherein the system administrator grants and limits access to each of the plurality of resources the user is authorized to access and control in the one step by creating the permission profile within the single interface using the selected checkboxes associated with access to the individual resources of the plurality of resources and using the plurality of icons to control the type of user access to each of the individual resources of the plurality of resources authorized to the user at a single time.
2. The method of claim 1 , further including defining the user access permissions by selecting graphical user interface (GUI) pages and a group of the plurality of resources that each user has access to, wherein the plurality of resources are summarized for selection.
3. The method of claim 2 , further including performing at least one of: allowing a system administrator to specify those of the plurality of resources a user is allowed to view or modify, allowing a system administrator to specify those of the plurality of resources a user is allowed to interact with, and allowing a system administrator to specify what type of a plurality of actions a user may perform.
4. The method of claim 3 , further including creating a user role for the user access permissions by the system administrator by individually opening up each one of a function access controller, a resource selector, and an action access controller and creating or modifying the user access permissions and attributes defined therein, wherein the user role inherits the attributes of each one of the function access controller, the resource selector, and the action access controller based upon selected or modified criteria.
5. The method of claim 4 , further including mapping the type of the plurality of resources to graphical user interface (GUI) pages.
6. The method of claim 1 , further including allowing one of a system administrator and a user to assign permissions to an alternative user to view or modify the plurality of resources.
7. A system for efficient authorization settings in a computing environment, the system comprising: a memory device storing instructions; and at least one processor device operable in the computing environment executing the instructions stored in the memory device, wherein the at least one processor device, when executing the instructions: creates or modifies user access permissions, by a system administrator, by mapping, granting, and limiting access to a plurality of resources by a type of the plurality of resources using a permission profile created for each user by the system administrator, the permission profile displayed within a single interface; uses checkboxes for controlling user access for individual resources of the plurality of resources and for mapping a plurality of icons to display a type of user access and control a particular user has over the individual resources Within the err permission profile created for each user; wherein the user access permissions are defined to include at least a type of command a user is allowed to execute, a list of the plurality of resources the user is allowed to execute the commands on, and a list of the plurality of resources the user is allowed to view such that the user access permissions are created or modified by the system administrator to grant and limit access to each of the respective plurality of resources the user is authorized to access and control in one step within the permission profile of the single interface in lieu of granting and limiting access to each of the respective plurality of resources to the user on an individual basis within multiple respective interfaces associated with respective ones of the plurality of resources, uses the plurality of icons for indicating a status specified for the type of the plurality of resources, uses the plurality of icons For indicating a status specified for each of a plurality of actions, wherein the plurality of actions include at least renaming, copying, and customizing settings of the plurality of actions, moves the plurality of icons to one of a plurality of positions for setting the access to the type of the plurality of resources, and selects the checkboxes next to each of the plurality of resources for one of viewing and modifying each of the plurality of resources the user is authorized to access and control in the one step by creating the permission profile within the single interface using the selected checkboxes associated with access to the individual resources of the plurality of resources and using the plurality of icons to control the type of user access to each of the individual recources of the plurality of resources authorized to the user at a single time.
8. The system of claim 7 , wherein the at least one processor device defines the user access permissions by selecting graphical user interface (GUI) pages and a group of the plurality of resources that each user has access to, wherein the plurality of resources are summarized for selection.
9. The system of claim 8 , further including: a function access controller, using the at least one processor device, allows a system administrator to specify those of the plurality of resources a user is allowed to view or modify, a resource selector, using the at least one processor device, allows a system administrator to specify those of the plurality of resources a user is allowed to interact with, and an action access controller, using the at least one processor device, allows a system administrator to specify what type of a plurality of actions a user may perform.
10. The system of claim 9 , wherein the at least one processor device creates a user role for the user access permissions by the system administrator by individually opening up each one of a function access controller, a resource selector, and an action access controller and creating or modifying the user access permissions and attributes defined therein, wherein the user role inherits the attributes of each one of the function access controller, the resource selector, and the action access controller based upon selected or modified criteria.
11. The system of claim 10 , wherein the at least one processor device maps the type of the plurality of resources to graphical user interface (GUI) pages.
12. The system of claim 7 , wherein the at least one processor device allows one of a system administrator and a user to assign permissions to an alternative user to view or modify the plurality of resources.
13. A computer program product for efficient authorization settings in a computing environment, the computer program product comprising a non-transitory computer-readable storage medium having computer-readable program code portions stored therein, that when executed by at least one processor device: creates or modifies user access permissions by mapping, granting, and limiting access to a plurality of resources by a type of the plurality of resources using a permission profile created for each user by the system administrator, the permission profile displayed within a single interface; uses checkboxes for controlling user access for individual resources of the plurality of resources and for mapping a plurality of icons to display a type of user access and control a particular user has over the individual resources within the permission profile created for each user; wherein the user access permissions are defined to include at least a type of command a user is allowed to execute, a list of the plurality of resources the user is allowed to execute the commands on, and a list of the plurality of resources the user is allowed to view such that the user access permissions are created or modified by the system administrator to grant and limit access to each of the respective plurality of resources the user is authorized to access and control in one step within the permission profile of the single interface, in lieu of granting and limiting access to each of the respective plurality of resources to the user on an individual basis within multiple respective interfaces associated with respective ones of the plurality of resources; uses the plurality of icons for indicating a status specified for the type of the plurality of resources; uses the plurality of icons for indicating a status specified for each of a plurality of actions, wherein the plurality of actions include at least renaming, copying, and customizing settings of the plurality of actions; moves the plurality of icons to one of a plurality of positions for setting the access to the type of the plurality of resources; and selects the checkboxes next to each of the plurality of resources for one of viewing and modifying each of the plurality of resources; wherein the system administrator grants and limits access to each of the plurality of resources the user is authorized to access and control in the one step by creating the permission profile within the single interface using the selected checkboxes associated with access to the individual resources of the plurality of resources and using the plurality of icons to control the type of user access to each of the individual resources of the plurality of resources authorized to the user at a single time.
14. The computer program product of claim 13 , further including computer-readable program code that, when executed by the at least one processor device defines the user access permissions by selecting graphical user interface (GUI) pages and a group of the plurality of resources that each user has access to, wherein the plurality of resources are summarized for selection.
15. The computer program product of claim 14 , further including computer-readable program code that, when executed by the at least one processor device performs at least one of: allowing a system administrator to specify those of the plurality of resources a user is allowed to view or modify, allowing a system administrator to specify those of the plurality of resources a user is allowed to interact with, and allowing a system administrator to specify what type of a plurality of actions a user may perform.
16. The computer program product of claim 15 , further including computer-readable program code that, when executed by the at least one processor device creating a user role for the user access permissions by the system administrator by individually opening up each one of a function access controller, a resource selector, and an action access controller and creating or modifying the user access permissions and attributes defined therein, wherein the user role inherits the attributes of each one of the function access controller, the resource selector, and the action access controller based upon selected or modified criteria.
17. The computer program product of claim 16 , further including computer-readable program code that, when executed by the at least one processor device maps the type of the plurality of resources to graphical user interface (GUI) pages.
18. The computer program product of claim 13 , further including computer-readable program code that, when executed by the at least one processor device allows one of a system administrator and a user to assign permissions to an alternative user to view or modify the plurality of resources.
Cooperative Patent Classification codes for this invention. Click any code to explore related patents in that topic.
April 16, 2014
September 11, 2018
Browse 5M+ US patents with plain-English claim translations and AI-generated analysis.